Listing Thumbnail

    NetWitness Platform

     Info
    Sold by: NetWitness 
    NetWitness Platform is a comprehensive threat detection, investigation, and response platform featuring threat intelligence, advanced analytics, and deep investigation capabilities. Use cases include incident response, forensics, and compliance. Features 400+ pre-built integrations.
    Listing Thumbnail

    NetWitness Platform

     Info
    Sold by: NetWitness 

    Overview

    NetWitness Platform delivers uncompromised threat detection, investigation, and response, across network, logs, and endpoint, whether deployed on-premises, in the cloud, or hybrid.

    The NetWitness Platform allows security analysts to prioritize, respond, reconstruct, survey, investigate and confirm information about threats in their environment and take the appropriate response, optimizing their security posture and protecting against the impacts of attacks.

    Core platform modules include network detection and response (NDR), security information and event management (SIEM) and endpoint detection and response (EDR). Additional modules are available for UEBA, SOAR, and asset analytics to reduce the attack surface. NetWitness features market-leading SASE integrations (both packets and logs), and over 400 integrations with general-purpose and industry-specific security tools, with the ability to instantly parse new sources. NetWitness Platform is utilized continuously in the field by NetWitness Incident Response/Cyber Defense Services, where new detections and methods cycle back into product development.

    Please contact NetWitness before purchasing at aws@netwitness.com . Our account team will provide an AWS Marketplace Private Offer with the correct product mix, quantities, and applicable discounts.

    Highlights

    • Comprehensive threat detection, investigation, and response across network, logs, and endpoint, whether deployed on-premises, cloud, or hybrid
    • Security automation including AI, ML, and UEBA, with business intelligence including asset discovery and prioritization, with professional Incident Response and Cyber Defense Services to supplement your SOC staff on demand
    • Out-of-the box value with over 400 pre-built integrations for general-purpose and industry-specifice security tools, plus the ability to instantly parse new sources, custom SASE integrations (packets AND logs) to secure remote workforces.

    Details

    Categories

    Delivery method

    Delivery option
    64-bit (x86) Amazon Machine Image (AMI)

    Latest version

    Operating system
    OtherLinux 8.10

    Pricing

    NetWitness Platform

     Info
    Pricing is based on contract duration. You pay upfront or in installments according to your contract terms with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
    Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator  to estimate your infrastructure costs.

    12-month contract (3)

     Info
    Dimension
    Description
    Cost/12 months
    NDR
    NetWitness Network – Per TB/day
    $27,000.00
    SIEM
    NetWitness Logs – Per GB/day
    $27,000.00
    EDR
    NetWitness Endpoint – Per Endpoint Subscription (100)
    $7,900.00

    Additional AWS infrastructure costs

    Type
    Cost
    EBS General Purpose SSD (gp2) volumes
    $0.10/per GB/month of provisioned storage

    Vendor refund policy

    We do not currently support refunds, but you can cancel at any time.

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     Info

    Delivery details

    64-bit (x86) Amazon Machine Image (AMI)

    Amazon Machine Image (AMI)

    An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.

    Version release notes

    Netwitness Platform 12.5

    Additional details

    Usage instructions

    To connect to the operating system, use SSH and the username ec2-user. All application controls are available via the command line by typing "commands /help".

    Support

    Vendor support

    Please allow 24 hours

    AWS infrastructure support

    AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Similar products

    Customer reviews

    Ratings and reviews

     Info
    0 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    0%
    0%
    0%
    0%
    0%
    0 AWS reviews
    |
    21 external reviews
    External reviews are sourced from G2  and are not included in the star rating for this product.
    Richardson R.

    NetWitness Platform XDR

    Reviewed on Nov 09, 2023
    Review provided by G2
    What do you like best about the product?
    Customer Support
    Number of Features
    Threat correlation
    What do you dislike about the product?
    Integration Challenges and Resource demands
    What problems is the product solving and how is that benefiting you?
    Handling multiple environment are able to support multi-tenancy, correlating seemingly unrelated events, providing a more coherent picture of potential security incidents and aiding in the identification of complex attack patterns.
    Marcus Joshua S.

    An Intelligent Platform for Businesses - NetWitness Platform XDR

    Reviewed on Oct 11, 2023
    Review provided by G2
    What do you like best about the product?
    As a user and part of security team in my company, the platform's ease of use and compact interface is a must on our daily monitoring. This alone is vital in part of investigation and response to any incidents that may arise. Based on my colleague, support team is also helpful and there are resources that is available to the community. Overall a great tool to assist on our job.
    What do you dislike about the product?
    It will take some time to get into the familiarity of navigating through the platform. This is not for an entry-level position, but learnings this tool will be a solid help in the future.
    What problems is the product solving and how is that benefiting you?
    This greatly helps in our day-to-day monitoring and response which improves our overall team performance.
    Computer & Network Security

    Netwitness XDR Experience

    Reviewed on Oct 01, 2023
    Review provided by G2
    What do you like best about the product?
    It is easy to use and provide better analysis options
    What do you dislike about the product?
    Support can be improved on devices integrations and troubleshooting
    What problems is the product solving and how is that benefiting you?
    It provides overall security posture view, easy to investigate and provide customize alerts to configure
    John B.

    Exploring new waters

    Reviewed on Sep 24, 2023
    Review provided by G2
    What do you like best about the product?
    Few weeks ago, I had an opportunity using the platform. And for what I have found out that its not so complicated after all.
    What do you dislike about the product?
    DIdnt find any as of this few weeks using it.
    What problems is the product solving and how is that benefiting you?
    For some security platforms kinda hard to make a playbook. But on this platform I just could create it very quick and run it right away so easily.
    Haitham A.

    RSA NetWitness and SOC

    Reviewed on Dec 28, 2021
    Review provided by G2
    What do you like best about the product?
    1- The visibility RSA NetWitness packet (NDR) provides is brilliant.
    2- Easy installation and deployment.
    3- The scalability of deployment is very good.
    4- The combination of NDR, EDR and Logs in the same interface.
    5- Effective technical support.
    What do you dislike about the product?
    1- Documentation that is poor.
    2- Integration with log sources is limited in comparison with other brands.
    3- Building use cases is not easy, and poor built-in use cases.
    4- Weak parsing of logs.
    5- The user interface is not friendly enough.
    6- Respond module requires significant enhancement.
    What problems is the product solving and how is that benefiting you?
    1- Databases stability.
    2- Meeting client expectations.
    3- Solving contract conflicts.
    4- Maintaining the NetWitness service availability.
    5- Engaging RSA NetWtiness management to solve complex problems and disputes.
    View all reviews